Skip to content

Solana Forensics

Reconstructs what really happened in a meme-coin launch, read-only and with an evidence grade per conclusion.

Research tool for blockchain dataWorking research tool

fig. VIIItraderSOL balance flatpool AASOLpool BSOLBASOLB+A−SOL+SOL−Bvault deltaspool A+A −SOLpool B+SOL −BtradeA to Bwallet SOL± 0
fig. VIII The pools' vault deltas rebuild the trade, even when the trader's SOL balance stays flat.

Who it is for

Research into scams around new tokens.

The problem

After a scam with a new token you want to know exactly what happened: who created it, who sold and where the money went next. Ordinary overviews get confused by detours through other tokens and by fake addresses, and produce conclusions that look convincing but are wrong.

What I built

I built a command-line tool that analyses transactions, wallets and complete launches and shows the results on a local dashboard. Groups of wallets that work together get an evidence grade that is fixed in code. The tool holds no key, signs nothing and never trades.

What it delivers

  1. A timeline from creation to sale, with the evidence at every step.

  2. Groups of cooperating wallets, each with an honest evidence grade.

  3. Read-only: no keys, no signatures, no trading.

Under the hood

  • Trades are derived directly from the trading pool itself, so detours cannot distort the price.

  • Recognises pools by the program that manages them, for several trading platforms at once.

  • Not a single external dependency: only what Node.js ships with.

The hardest part

Fake addresses that look almost identical to real ones (address poisoning) inflated groups of wallets artificially. Those relationships now get the lowest evidence grade or are excluded entirely, so a conclusion never rests on such a trick.

Built with

  • Node.js
  • Solana RPC
  • WebSocket
  • SVG